MGASA-2020-0149 - Updated chromium-browser-stable packages fix security vulnerability

Publication date: 01 Apr 2020
URL: https://advisories.mageia.org/MGASA-2020-0149.html
Type: security
Affected Mageia releases: 7
CVE: CVE-2020-6420,
     CVE-2020-6422,
     CVE-2020-6424,
     CVE-2020-6425,
     CVE-2020-6426,
     CVE-2020-6427,
     CVE-2020-6428,
     CVE-2020-6429,
     CVE-2020-6449,
     CVE-2019-20503

Multiple flaws were found in the way Chromium 80.0.3987.122 processes
various types of web content, where loading a web page containing
malicious content could cause Chromium to crash, execute arbitrary code,
or disclose sensitive information. (CVE-2020-6420, CVE-2020-6422,
CVE-2020-6424, CVE-2020-6425, CVE-2020-6426, CVE-2020-6427,
CVE-2020-6428, CVE-2020-6429, CVE-2020-6449, CVE-2019-20503)

References:
- https://bugs.mageia.org/show_bug.cgi?id=26366
- https://chromereleases.googleblog.com/2020/03/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2020/03/stable-channel-update-for-desktop_18.html
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6420
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6422
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6424
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6425
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6426
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6427
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6428
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6429
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6449
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-20503

SRPMS:
- 7/core/chromium-browser-stable-80.0.3987.149-1.mga7

Mageia 2020-0149: chromium-browser-stable security update

Multiple flaws were found in the way Chromium 80.0.3987.122 processes various types of web content, where loading a web page containing malicious content could cause Chromium to cr...

Summary

Multiple flaws were found in the way Chromium 80.0.3987.122 processes various types of web content, where loading a web page containing malicious content could cause Chromium to crash, execute arbitrary code, or disclose sensitive information. (CVE-2020-6420, CVE-2020-6422, CVE-2020-6424, CVE-2020-6425, CVE-2020-6426, CVE-2020-6427, CVE-2020-6428, CVE-2020-6429, CVE-2020-6449, CVE-2019-20503)

References

- https://bugs.mageia.org/show_bug.cgi?id=26366

- https://chromereleases.googleblog.com/2020/03/stable-channel-update-for-desktop.html

- https://chromereleases.googleblog.com/2020/03/stable-channel-update-for-desktop_18.html

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6420

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6422

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6424

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6425

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6426

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6427

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6428

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6429

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6449

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-20503

Resolution

MGASA-2020-0149 - Updated chromium-browser-stable packages fix security vulnerability

SRPMS

- 7/core/chromium-browser-stable-80.0.3987.149-1.mga7

Severity
Publication date: 01 Apr 2020
URL: https://advisories.mageia.org/MGASA-2020-0149.html
Type: security
CVE: CVE-2020-6420, CVE-2020-6422, CVE-2020-6424, CVE-2020-6425, CVE-2020-6426, CVE-2020-6427, CVE-2020-6428, CVE-2020-6429, CVE-2020-6449, CVE-2019-20503

Related News